Hier dir Erklärung aus der Notes Hilfe:
Understanding the password quality scale
When creating passwords for user, server, or certifier IDs, you need to understand the criteria by which Domino measures the password's strength and security. Domino measures this criteria according to the level assigned on its password quality scale. The scale assigns a minimum level of quality to the password on an ID file. Domino bases the quality on the number and variety of characters in the password.
The scale ranges from Weak to Strong or from 0 (lowest - no password required) to 16 (highest). A quality of 1 indicates that any password satisfies the criteria. Domino defines a default level 10 for certifier password quality, 8 for user password quality, and 0 for server password quality, but you can change these defaults in the Administration Preferences dialog or in the registration or certification dialogs.
Not all passwords of equal length have equal strength in the password quality scale. For example, the 8-character word "password" (because it is a word) and the 8-character word "1168Acme" (because it contains numbers and alphabetic characters) do not carry the same level of character complexity and do not have equal strength on the quality scale. Password quality scale Description Example
0 Password is optional. n/a
1 Allow any password. "b", "3"
2-6 Allow a weak password, even though you might be able to guess it by trial and error. "password", "doughnut" (password quality scale 3)
"lightferret", "b 4D" (password quality scale 6)
7-12 Require a password that is difficult to guess, but might be vulnerable to an automated attack. "pqlrtmxr", "wefourkings" (password quality scale
13-16 Require a strong password, even though the user may have difficulty remembering it.
"4891spyONu" (password quality scale 13)
"lakestreampondriverocean", "stRem2pO()" (password quality scale 15)
"stream8pond1river7lake2ocean" (password quality scale 16)
Tips for assigning passwords and scale
1. Do not use words in a password that are in the Domino spell-check dictionary. Passwords containing words found in a Domino spell-check dictionary are generally weaker than passwords of equal length that do not contain words from the spell-check dictionary.
2. Use mixed-case words and words that contain numbers and punctuation for passwords instead of entirely lowercase alphabet characters. To make a password stronger without making it longer, avoid using words; instead use mixed-case characters and include punctuation and numbers.
3. Use a passphrase instead of a password. A complete sentence, especially one with a word or two misspelled, is a strong password that an attacker would have difficulty guessing.
4. Use passwords that have a quality of 12 or higher. Passwords that have a quality below 4 are easy to guess. Passwords that have a quality of 12 or higher are resistant to an automated attack.
5. Set a default value for all Password Quality Scale fields so that all passwords assigned to servers, users, and certifier IDs in your organization have appropriate levels of complexity.
MOD